cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 170 of 206
CVE-2021-32550P4MEDIUMCVSS 5.5v18.04v20.04+3 more2021-06-12
CVE-2021-32550 [MEDIUM] CWE-59 CVE-2021-32550: It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-14 package apport hooks, it could expose private data to other local users.
nvd
CVE-2021-32554P4MEDIUMCVSS 5.5v18.04v20.04+3 more2021-06-12
CVE-2021-32554 [MEDIUM] CWE-59 CVE-2021-32554: It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the xorg package apport hooks, it could expose private data to other local users.
nvd
CVE-2021-32552P4MEDIUMCVSS 5.5v18.04v20.04+3 more2021-06-12
CVE-2021-32552 [MEDIUM] CWE-59 CVE-2021-32552: It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-16 package apport hooks, it could expose private data to other local users.
nvd
CVE-2019-2957P4MEDIUMCVSS 4.9v16.04v18.04+2 more2019-10-16
CVE-2019-2957 [MEDIUM] CVE-2019-2957: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 8.0.17 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthoriz
nvd
CVE-2020-27349P4MEDIUMCVSS 5.5v16.04v18.04+2 more2020-12-09
CVE-2020-27349 [MEDIUM] CWE-862 CVE-2020-27349: Aptdaemon performed policykit checks after interacting with potentially untrusted files with elevate Aptdaemon performed policykit checks after interacting with potentially untrusted files with elevated privileges. This affected versions prior to 1.1.1+bzr982-0ubuntu34.1, 1.1.1+bzr982-0ubuntu32.3, 1.1.1+bzr982-0ubuntu19.5, 1.1.1+bzr982-0ubuntu14.5.
nvd
CVE-2022-1184P4MEDIUMCVSS 5.5v14.04v16.04+2 more2022-08-29
CVE-2022-1184 [MEDIUM] CWE-416 CVE-2022-1184: A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesyste A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.
nvd
CVE-2015-2721P4MEDIUMCVSS 4.3v12.04v14.04+2 more2015-07-06
CVE-2015-2721 [MEDIUM] CWE-310 CVE-2015-2721: Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by b
nvd
CVE-2023-1032P4MEDIUMCVSS 5.5v22.04v22.102024-01-08
CVE-2023-1032 [MEDIUM] CWE-415 CVE-2023-1032: The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socke The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c. This issue was introduced in da214a475f8bd1d3e9e7a19ddfeb4d1617551bab and fixed in 649c15c7691e9b13cbe9bf6c65c365350e056067.
nvd
CVE-2015-1244P4MEDIUMCVSS 5.0v14.04v14.10+1 more2015-04-19
CVE-2015-1244 [MEDIUM] CWE-200 CVE-2015-1244: The URLRequest::GetHSTSRedirect function in url_request/url_request.cc in Google Chrome before 42.0. The URLRequest::GetHSTSRedirect function in url_request/url_request.cc in Google Chrome before 42.0.2311.90 does not replace the ws scheme with the wss scheme whenever an HSTS Policy is active, which makes it easier for remote attackers to obtain sensitive information by sniffing the network for WebSocket traffic.
nvd
CVE-2015-4858P4MEDIUMCVSS 4.0v12.04v14.04+2 more2015-10-21
CVE-2015-4858 [MEDIUM] CVE-2015-4858: Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and 5.6.26 and earlier, allows Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and 5.6.26 and earlier, allows remote authenticated users to affect availability via vectors related to DML, a different vulnerability than CVE-2015-4913.
nvd
CVE-2014-3730P4MEDIUMCVSS 4.3v10.04v12.04+3 more2014-05-16
CVE-2014-3730 [MEDIUM] CWE-20 CVE-2014-3730: The django.util.http.is_safe_url function in Django 1.4 before 1.4.13, 1.5 before 1.5.8, 1.6 before The django.util.http.is_safe_url function in Django 1.4 before 1.4.13, 1.5 before 1.5.8, 1.6 before 1.6.5, and 1.7 before 1.7b4 does not properly validate URLs, which allows remote attackers to conduct open redirect attacks via a malformed URL, as demonstrated by "http:\\\djangoproject.com."
nvd
CVE-2026-47334P4MEDIUMCVSS 5.5v24.04v25.10+4 more2026-05-28
CVE-2026-47334 [MEDIUM] CWE-833 CVE-2026-47334: Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly sleep while holding Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly sleep while holding a spinlock in notification handling code. The bug can be triggered by an unprivileged local user and can result in kernel panic or deadlock.
nvd
CVE-2015-7941P4MEDIUMCVSS 4.3v12.04v14.04+1 more2015-11-18
CVE-2015-7941 [MEDIUM] CWE-119 CVE-2015-7941: libxml2 2.9.2 does not properly stop parsing invalid input, which allows context-dependent attackers libxml2 2.9.2 does not properly stop parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and libxml2 crash) via crafted XML data to the (1) xmlParseEntityDecl or (2) xmlParseConditionalSections function in parser.c, as demonstrated by non-terminated entities.
nvd
CVE-2016-0448P4MEDIUMCVSS 4.0v12.04v14.04+2 more2016-01-21
CVE-2016-0448 [MEDIUM] CVE-2016-0448: Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66, and Java SE Embedded 8u65 allows remote authenticated users to affect confidentiality via vectors related to JMX.
nvd
CVE-2018-3056P4MEDIUMCVSS 4.3v14.04v16.04+1 more2018-07-18
CVE-2018-3056 [MEDIUM] CVE-2018-3056: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privile Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.7.22 and prior and 8.0.11 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2012-3867P4MEDIUMCVSS 4.3v10.04v11.04+2 more2012-08-06
CVE-2012-3867 [MEDIUM] CWE-264 CVE-2012-3867: lib/puppet/ssl/certificate_authority.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet lib/puppet/ssl/certificate_authority.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, does not properly restrict the characters in the Common Name field of a Certificate Signing Request (CSR), which makes it easier for user-assisted remote attackers to trick administrators into signing a crafted agent certificate
nvd
CVE-2013-5614P4MEDIUMCVSS 4.3v12.04v12.10+2 more2013-12-11
CVE-2013-5614 [MEDIUM] CWE-1021 CVE-2013-5614: Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute of an IFRAME element during processing of a contained OBJECT element, which allows remote attackers to bypass intended sandbox restrictions via a crafted web site.
nvd
CVE-2006-1729P4MEDIUMCVSS 4.3v4.10v5.04+1 more2006-04-14
CVE-2006-1729 [MEDIUM] CWE-20 CVE-2006-1729: Mozilla Firefox 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonke Mozilla Firefox 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to read arbitrary files by (1) inserting the target filename into a text box, then turning that box into a file upload control, or (2) changing the type of the input control that is associated with an event handler.
nvd
CVE-2015-4830P4MEDIUMCVSS 4.0v12.04v14.04+2 more2015-10-21
CVE-2015-4830 [MEDIUM] CVE-2015-4830: Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows re Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Server : Security : Privileges.
nvd
CVE-2015-0819P4MEDIUMCVSS 4.3v12.04v14.04+1 more2015-02-25
CVE-2015-0819 [MEDIUM] CWE-19 CVE-2015-0819: The UITour::onPageEvent function in Mozilla Firefox before 36.0 does not ensure that an API call ori The UITour::onPageEvent function in Mozilla Firefox before 36.0 does not ensure that an API call originates from a foreground tab, which allows remote attackers to conduct spoofing and clickjacking attacks by leveraging access to a UI Tour web site.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase